Concorde Hotel Singapore
August 13, 2025
8:30am - 3:00pm

Singapore Cloud Security Summit 2025

Join us at the Cloud Security Summit to strengthen your cloud defenses and tackle emerging threats. Explore Zero Trust, secure multi-cloud deployments, and AI-driven security with industry experts through hands-on sessions and real-world case studies.

Singapore Cloud Security Summit 2025
Singapore Cloud Security Summit 2025

Join us at the Cloud Security Summit to explore the latest in cloud security and stay ahead of emerging threats.

In August, we're bringing together cloud security professionals, IT leaders, and industry experts to strengthen your cloud security posture and safeguard your organisation.

Dive deep into Zero Trust models, secure multi-cloud deployments, ensure your Infrastructure-as-Code is compliant, and discover how AI is revolutionising cloud security. Participate in interactive sessions, real-world case studies, panel discussions, and debates to stay ahead of the game.

Key Themes:

  • Tackling Emerging Cloud Security
  • Implementing Zero Trust in Cloud Environments
  • Securing Multi-Cloud Deployments
  • Ensuring Infrastructure-as-Code Compliance
  • Leveraging AI in Cloud Security
  • Protecting Cloud Data
  • Building Robust Cloud Security Architectures


Who Should Attend?


Cloud security professionals, IT leaders, cybersecurity experts, DevOps engineers, and anyone keen to enhance their understanding of cloud security and network with industry peers.

Don't miss this chance for a day of learning, innovation, and collaboration at the Cloud Security Summit.

Program Highlights

12+

Speakers

10+

Sessions

125+

Cloud Security Leaders

1

Track

Our Speakers

Wai Khin Hoi

Wai Khin Hoi

Chief Information Security Officer
Nicki Doble

Nicki Doble

International Technology and Security Leader
Shishir Kumar Singh

Shishir Kumar Singh

Group Head of Information Security
May-Ann Lim

May-Ann Lim

Director of Multilateral Relations, Data Policy, and Partnerships
Balaji Kapsikar

Balaji Kapsikar

Head of Technology & Cyber Risk
Stanley Tsang

Stanley Tsang

Distinguished Engineer and Senior Director
Steven Sim

Steven Sim

Chair, Advisory Committee
Shu Teng Loh

Shu Teng Loh

Senior Sales Engineer
Rahim Malek

Rahim Malek

Enterprise Sales Engineer
Ken Chia

Ken Chia

Principal
Roger Lau

Roger Lau

Lead Solutions Architect APJ

Agenda

8:30 am
Registration Open - Breakfast and Networking
No items found.
9:15 AM
Opening Address from the MC
No items found.
9:25 am
Opening Keynote: Beyond Compliance: Building Cyber Resilience in Cloud-First Financial Services

As financial institutions shift to cloud-first strategies, the goal must evolve from just meeting compliance to actively building cyber resilience. This keynote explores how to integrate governance, risk, and security in ways that are both regulatory-aligned and business-driven.

  • Moving from reactive controls to proactive cloud security strategies
  • Using automation to drive actionable, real-time cyber defense
  • Positioning security as a business enabler, not a blocker
  • Creating a flexible cyber playbook that scales with regulation and growth
Wai Khin Hoi
Chief Information Security Officer, RSM Singapore
9:50 am
Keynote: Defending the Cloud at the Edge

Enterprise applications are deployed across a wide range of cloud environments, each with their own security controls of various capabilities. In the meantime, the threat landscape for web applications has become increasingly sophisticated, and has seen common threats like Bot, DDoS, and Application attacks persist and grow in complexity.

  • The evolving nature of Bot, DDoS, and Layer 7 application attacks — and why they continue to succeed
  • Architecting a consistent security inspection and enforcement layer at the edge, independent of origin infrastructure
  • Leveraging DevOps tools like Terraform and GitHub to automate the deployment of security controls as part of the CI/CD pipeline
Shu Teng Loh
Senior Sales Engineer, Fastly
10:20 am
Panel Discussion: Exploring the Digital Infrastructure Act: Preparing for Cloud Regulation in Singapore

Singapore’s proposed Digital Infrastructure Act aims to regulate cloud and data centre operators as critical infrastructure. This session explores what organisations need to know now to prepare for heightened expectations around resilience, incident response, and security controls—before the law comes into force.

  • What key requirements are expected under the new Digital Infrastructure Act?
  • How will the Act shift risk, accountability, and oversight expectations?
  • What should CSPs and customers do today to prepare?
  • How will this regulation affect procurement and cloud strategy in 2025?
Stanley Tsang
Distinguished Engineer and Senior Director, Cyber Security Agency of Singapore
May-Ann Lim
Executive Director of the Coalition for Cybersecurity in Asia Pacific (CCAPAC), and the Director of Multilateral Relations, Data Policy, and Partnerships at Access Partnership
Ken Chia
Principal, Baker McKenzie Wong & Leow
10:50 am
Morning Tea and Networking
No items found.
11:20 am
Audience Activity

In this innovative session, attendees will be faced with a series of scenarios that they may face in their roles. Attendees will discuss the possible courses of action with their peers to consider the ramifications of each option before logging their own course of action. 

Results will be tallied and analysed by our session facilitator and results will impact the way the group moves through the activity.

Will we collectively choose the right course of action?

No items found.
11:40 am
The New Email Threat Landscape: Why Cloud-Scale Attacks Demand AI-Native Defenses

Email remains the primary attack vector, and security teams are under pressure as threats grow more sophisticated, leveraging cloud platforms and generative AI to bypass legacy defenses. Current security controls are not enough to stop these novel, behavior-based attacks. How do we step up our defenses against these email threats then?

This session will provide an insight into:

  • What is the top of mind for the security team today in terms of email as the #1 attack vector
  • Why is email as an attack vector a problem
  • How do we solve the problem with behavioral AI
Rahim Malek
Enterprise Sales Engineer, Abnormal AI
11:55 am
How Fintechs are Developing a Multi-Cloud Risk Management Framework in Southeast Asia

As fintechs across Southeast Asia race to scale operations, adopting multi-cloud strategies has become a business imperative. However, with this agility comes a new breed of risks — regulatory fragmentation, cross-border data governance, vendor lock-in, and complex threat landscapes, the session will cover:

  • Navigating regulatory expectations across SEA
  • Designing unified security baselines across heterogeneous cloud environments
  • Embedding real-time monitoring, threat detection, and automated compliance reporting
  • Mitigating vendor-specific risks and third-party exposures
  • Building a cloud governance model aligned with Regulatory Bodies

Whether you're a cloud architect, compliance leader, or CISO, this session will provide actionable insights into managing complexity while embracing innovation at scale in fintech.

Balaji Kapsikar
Head of Technology & Cyber Risk, Funding Societies Singapore
12:15 pm
Evolution of Enterprise AI: Navigating New Trends and Challenges

The risks in open-source AI models mirror those in traditional open-source libraries, including vulnerabilities, malicious code and licensing issues, while also introducing unique challenges when consuming the models. This talk will delve into the complexities of these risks, examining the challenges they pose and the importance of understanding them in today’s AI-driven landscape.

Roger Lau
Lead Solutions Architect APJ, Sonatype
12:30 pm
Panel Discussion: Navigating the Present and Future of Cloud Security in Singapore

Cloud security is evolving fast, with tighter rules, more complex threats, and greater reliance on large‑scale cloud providers. This panel will explore how organisations can strengthen their security and adapt to these shifts.

We’ll discuss:

  • How can organisations strengthen cloud security while meeting new regulatory demands?
  • How can we protect cloud workloads and data from emerging threats?
  • What’s the bigger cloud risk — AI‑powered attacks or unsafe use of AI by internal teams?
  • How will data sovereignty and localisation rules impact multi‑cloud strategies?
Nicki Doble
International Technology and Security Leader
Shishir Kumar Singh
Group Head of Information Security, Advance Intelligence Group
Steven Sim
Chair, Advisory Committee, OT-ISAC
1:00 pm
Roundtable Discussions

Roundtable Discussions:


Choose 1 topic to join on the day!

No items found.
1:50 pm
Lunch & Exhibition
No items found.
2:40 PM
CloudSec QuickFire: 10 Questions in 10 Minutes

Put your cloud security knowledge to the test in this fast-paced quiz covering real-world threats, key concepts, and emerging trends. Compete for bragging rights—and a travel voucher—as the top scorer takes the crown.

No items found.
2:55 pm
Driving C-Suite Accountability for Secure, AI-Powered Cloud Transformation

As organisations modernise and embrace both cloud and AI, cybersecurity accountability can’t be left to the technology team alone. Every member of the C-suite plays a role in ensuring that innovation doesn’t outpace security. In this session, Nicki will share practical strategies and conversation starters for engaging senior leaders, aligning risk ownership, and making sure AI adoption and cloud migration are treated as collective responsibilities—not opportunities to offload risk.

  • How to align AI and cloud security priorities across the C-suite
  • Practical ways to embed shared accountability for cyber risk in leadership teams
  • Ensuring non-technical leaders understand the security implications of AI in cloud environments

Nicki Doble
International Technology and Security Leader
3:15 pm
Cloud Accountability in 2025: Where Does Responsibility Really Lie?

As cloud adoption accelerates, Singapore must redefine accountability across regulators, providers, and customers. Who owns the risk—and who answers when things go wrong?

  • Is shared responsibility outdated in 2025’s cloud ecosystem?
  • What must every cloud SLA include moving forward?
  • Who’s liable when outages or breaches impact customers?
  • How can customers gain control without owning infrastructure?
Shishir Kumar Singh
Group Head of Information Security, Advance Intelligence Group
3:30 pm
Event Closes
No items found.

Who Attends?

Chief Information Security Officer

Chief Information Officer

Heads of Cloud Security

Head of Infrastructure

Head of Cloud

Head of Cloud Platform

Head of DevSecOps and AppSec

Head of Cybersecurity Architecture

IT Risk Director

Cybersecurity GRC Director

SRE Director

Network Engineering Director

Network Manager

Cybersecurity Engineering Director

Cybersecurity Operations Manager

Benefits For Attendees

4.7 / 5

average overall rating from attendees at our events.

94%

of attendees rate our content as “Extremely Relevant”.

100%

of attendees would recommend attending a Clutch Event to a colleague.

Our event sponsors
For sponsorship opportunities, please get in touch with Danny Perry, danny@weareclutch.com.au

Event Location

Concorde Hotel Singapore

100 Orchard Rd, Singapore 238840
Singapore Cloud Security Summit 2025

FAQs

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique.

No items found.

Get In Touch

Contact our event team for any enquiry

Danny Perry

Director of Sales
For sponsorship opportunities.
danny@clutchgroup.co

Lili Munar

Director of Client Relations
For guest and attendee enquiries.
lilibeth@clutchgroup.co

Ben Turner

Director of Conference Production
For speaking opportunities & content enquiries.
ben@clutchevents.co

Taylor Stanyon

Director of Operations
For event-related enquiries.
taylor@clutchgroup.co